CVE-2024-41717: Kieback&peter DDC4002
Critical severity, CVSS 9.8. EPSS: 0.6% chance of exploitation in the next 30 days.
Kieback & Peter's DDC4000 series is vulnerable to a path traversal vulnerability, which may allow an unauthenticated attacker to read files on the system.
Affected products
- Kieback&peter DDC4002: up to and including 1.12.14
- Kieback&peter DDC4002E: up to and including 1.17.6
- Kieback&peter DDC4020E: up to and including 1.17.6
- Kieback&peter DDC4100: up to and including 1.7.4
- Kieback&peter DDC4200: up to and including 1.12.14
- Kieback&peter DDC4200-L: up to and including 1.12.14
- Kieback&peter DDC4200E: up to and including 1.17.6
- Kieback&peter DDC4400: up to and including 1.12.14
- Kieback&peter DDC4400E: up to and including 1.17.6
- Kieback\&peter DDC4002 Firmware: up to and including 1.12.14
- Kieback\&peter DDC4002E Firmware: up to and including 1.17.6
- Kieback\&peter DDC4020E Firmware: up to and including 1.17.6
- Kieback\&peter DDC4040E Firmware: up to and including 1.17.6
- Kieback\&peter DDC4100 Firmware: up to and including 1.7.4
- Kieback\&peter DDC4200-L Firmware: up to and including 1.12.14
- Kieback\&peter DDC4200 Firmware: up to and including 1.12.14
- Kieback\&peter DDC4200E Firmware: up to and including 1.17.6
- Kieback\&peter DDC4400 Firmware: up to and including 1.12.14
- Kieback\&peter DDC4400E Firmware: up to and including 1.17.6
- Kieback & Peter DDC4040E: up to and including 1.17.6
Published 2024-10-22. Last modified 2026-06-17.